Back to vendor advisories
Microsoft Security Response CenterCVE-2025-11215

Chromium: CVE-2025-11215 Off by one error in V8

MediumVendor CVSS 4.3 / 10 1 CVE Published Oct 2, 2025 at 8:48 PM UTC

Summary

This CVE was assigned by Chrome. Microsoft Edge (Chromium-based) ingests Chromium, which addresses this vulnerability. Please see Google Chrome Releases for more information.

Products covered

  • Microsoft Edge (Chromium-based)

  • cbl2 nodejs18 18.20.3-12 on CBL-Mariner 2.0

Remediation

Release Notes

Vendor-listed fixes

  • 141.0.3537.57

CVEs in this advisory 1

Updates

  1. Published by Microsoft Security Response Center

    The publication date reported by the vendor.

  2. Updated by Microsoft Security Response Center

    The vendor changed the advisory after it was first published.

  3. Added to SecurityAlert

    We collected the advisory from the official source.